onsite
Security Engineer, Cloud Red Team, Cloud CISO - Google
Engineering Manager
Security Engineer focused on cloud red teaming, performing vulnerability assessments, exploit development, and incident response to protect cloud infrastructure and services.
About the role
Key Responsibilities
- Design and execute offensive security engagements against cloud platforms, identifying and exploiting vulnerabilities in infrastructure, services, and configurations.
- Develop custom exploit code and proof‑of‑concept attacks to demonstrate risk and guide remediation efforts.
- Collaborate with cloud engineering and DevSecOps teams to integrate security findings into CI/CD pipelines and hardening guidelines.
- Conduct comprehensive vulnerability assessments, threat modeling, and risk analysis for multi‑cloud environments.
- Respond to security incidents, perform root‑cause analysis, and provide actionable recommendations to prevent recurrence.
Requirements
- Bachelor’s degree or equivalent practical experience with at least 2 years in a technical security role such as security engineering, security research, DevSecOps, or incident response.
- Hands‑on experience in vulnerability assessment, exploitation, and ethical hacking, preferably within cloud environments.
- Minimum 3 years of offensive security experience, including red teaming, vulnerability research, or penetration testing, beyond merely running automated tools.
- Strong understanding of cloud platforms (e.g., GCP, AWS, Azure) and associated security controls.
- Proficiency in scripting or programming languages (e.g., Python, Bash) to develop custom tools and automation.
Skills
penetration testing